#302 Use common user between frontend/backend
Closed 3 years ago by jkaluza. Opened 4 years ago by kevin.

Downstream bug: https://pagure.io/fedora-infrastructure/issue/7185

In order to allow frontend to read-write the same storage that backend does we currently have permissions wide open. (which is crazy).

If odcs could run the wsgi and the backend with the same user/uid we could lock things back down to normal.

We could of course look at fixing this in fedora infrastructure ansible short term, but longer term might be good to fix it in odcs.


I think this should be configured by particular ODCS deployment. So far in all cases, ODCS is deployed in a way that shared NFS storage is used and to use this NFS storage, the "common user" needs to have the same UID. I think ODCS upstream cannot dictate this UID and it should be up to deployment to decide it.

I will close this ticket. Note that Fedora deployment is fixed in this regards.

Metadata Update from @jkaluza:
- Issue status updated to: Closed (was: Open)

3 years ago

Login to comment on this ticket.

Metadata